this post was submitted on 04 Mar 2025
564 points (98.1% liked)

Technology

64147 readers
8612 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[โ€“] [email protected] 14 points 2 days ago* (last edited 2 days ago) (1 children)

Have to keep things offline and outdated nowadays ๐Ÿซค to prevent things like this happening.

[โ€“] [email protected] 9 points 2 days ago* (last edited 2 days ago) (1 children)

Honestly, that's not a terrible idea in general. Like, if you have an Internet-connected device, you have a hook onto your network that someone can exploit down the line, including -- as Rossman points out -- making it function differently than it did at the time of your purchase in ways that you may not like. And even if you trust the manufacturer, that doesn't mean that someone cannot acquire them and then exploit that hook.

Kind of a problem with apps and other software too. Even open-source software, like the xz attack -- the xz package itself was fine, but you had someone, probably a country, intentionally target and try to seize control of an open-source project to exploit the trust that the open-source project had built up. I understand that it's also been a concern with even browser extensions.

The right to push updates to an Internet-connected device, unfortunately, has value. And there are people who will try to figure out ways to take advantage of that.

[โ€“] Alexstarfire 2 points 2 days ago

Funny you mention apps. I turned auto-update off for all of them on my phone because I got tired of functionality being removed. A couple force updates after you get too far behind. Been alright so far, but it's been less than half a year ago we'll see how it goes in the long run. Security is obviously taking a hit by doing this.